CVE-2025-4858 | D-Link DAP-2695 120b36r137_ALL_en_20210528 ARP Spoofing Prevention Page /adv_arpspoofing.php harp_mac cross site scripting
A vulnerability was found in D-Link DAP-2695 120b36r137_ALL_en_20210528. It has been declared as problematic. This vulnerability affects unknown code of the file /adv_arpspoofing.php of the component ARP Spoofing Prevention Page. The manipulation of the argument harp_mac leads to cross site scripting. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability was named CVE-2025-4858. The attack can be initiated remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.